需要修复电脑?
聘请专家
Target:Visa
Date discovered:17/06/2006

 General The goal is to get the following information:
    • Credit card


Phishing method:
    • URL link

 Email Details From: service@visa.com
Subject: Transaction Was Refused!

Visible link: http://www.visa.com/secure/change_pin/index.htm
Actual link: http://219.68.32.188/css/change_pin/system.htm
IP address: 219.68.32.188


The email is designed to avoid detection from Antispam and Antiphishing. The technique is:
    • The Body of the email contains HTML content.



This screenshot is how the phishing email looks like:


 Page Details Visible URL: http://194.112.212.6/data/visa/change_pin/index.htm
Actual URL: http://194.112.212.6/data/visa/change_pin/index.htm
IP address: 194.112.212.6


The phishing page will look like the following:



说明添加者: Dominik Auerbach 打开 2006年6月17日星期六

反馈 . . . .
https:// 为了你的安全,此窗口已加密。